7.5
CVE-2007-3461
- EPSS 1.06%
- Veröffentlicht 27.06.2007 18:30:00
- Zuletzt bearbeitet 16.06.2026 22:42:05
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in property.php in elkagroup Image Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Elkagroup ≫ Image Gallery Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.06% | 0.601 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://osvdb.org/36294
http://secunia.com/advisories/25844
http://www.securityfocus.com/bid/24666
https://exchange.xforce.ibmcloud.com/vulnerabilities/35090
https://www.exploit-db.com/exploits/4114